Cisco WebEx Meetings Server 2.6 allows remote attackers to execute arbitrary commands by injecting these commands into an application script, aka Bug ID CSCuy83130.
http://www.securitytracker.com/id/1036809
http://www.securityfocus.com/bid/92959
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160914-wem